zotero-management

Pass

Audited by Gen Agent Trust Hub on May 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill manages credentials securely using environment variables ($ZOTERO_API_KEY and $ZOTERO_USER_ID) rather than hardcoding sensitive tokens within the instructions.
  • [SAFE]: Network operations are exclusively directed towards official Zotero API endpoints (api.zotero.org) and the local Zotero service (localhost), which are necessary for the skill's stated purpose.
  • [SAFE]: No malicious patterns such as obfuscation, remote script execution, or persistence mechanisms were detected in the workflows or command examples provided.
Audit Metadata
Risk Level
SAFE
Analyzed
May 4, 2026, 11:18 AM
Security Audit — agent-trust-hub — zotero-management